Total
9311 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2008-3420 | 1 Willo | 1 Mobius Web Publishing Software | 2017-09-28 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in Mobius for Mimsy XG 1 1.4.4.1 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to browse.php or (2) the s parameter in an exhibitions action to detail.php. | |||||
CVE-2008-3445 | 1 Phpmyrealty | 1 Phpmyrealty | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in phpMyRealty (PMR) 2.0.0 allows remote attackers to execute arbitrary SQL commands via the location parameter. | |||||
CVE-2008-3452 | 1 Endonesia | 2 Calendar Module, Endonesia | 2017-09-28 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in the Calendar module in eNdonesia 8.4 allows remote attackers to execute arbitrary SQL commands via the loc_id parameter in a list_events action to mod.php. | |||||
CVE-2008-3484 | 1 Estoreaff | 1 Estoreaff | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in eStoreAff 0.1 allows remote attackers to execute arbitrary SQL commands via the cid parameter in a showcat action to index.php. | |||||
CVE-2008-3487 | 1 Phpauctions | 1 Phpauction Gpl Enhanced | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in profile.php in PHPAuction GPL Enhanced 2.51 allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2008-3489 | 1 Phpx | 1 Phpx | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in checkCookie function in includes/functions.inc.php in PHPX 3.5.16 allows remote attackers to execute arbitrary SQL commands via a PXL cookie. | |||||
CVE-2008-3490 | 1 E-topbiz | 1 Online Dating | 2017-09-28 | 6.5 MEDIUM | N/A |
SQL injection vulnerability in members/mail.php in E-topbiz Online Dating 3 1.0 allows remote authenticated users to execute arbitrary SQL commands via the mail_id parameter in a veiw action. | |||||
CVE-2008-3491 | 1 Scripts24 | 2 Ipost, Itgp | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in go.php in Scripts24 iPost 1.0.1 and iTGP 1.0.4 allows remote attackers to execute arbitrary SQL commands via the id parameter in a report action. | |||||
CVE-2008-3498 | 2 Joomla, Netshinesoftware | 2 Joomla\!, Com Netinvoice | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in the nBill (com_netinvoice) component 1.2.0 SP1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the cid parameter in an orders action to index.php. NOTE: some of these details are obtained from third party information. | |||||
CVE-2008-3506 | 1 Polypager | 1 Polypager | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in PolyPager 1.0 rc2 and earlier allows remote attackers to execute arbitrary SQL commands via the nr parameter to the default URI. | |||||
CVE-2008-3507 | 1 Wogan May | 1 Litenews | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in LiteNews 0.1 (aka 01), and possibly 1.2 and earlier, allows remote attackers to execute arbitrary SQL commands via the id parameter in a view action. | |||||
CVE-2008-3497 | 1 Myphp Cms | 1 Myphp Cms | 2017-09-28 | 6.8 MEDIUM | N/A |
SQL injection vulnerability in pages.php in MyPHP CMS 0.3.1 allows remote attackers to execute arbitrary SQL commands via the pid parameter. | |||||
CVE-2008-3554 | 1 Comsenz | 1 Discuz | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in Discuz! 6.0.1 allows remote attackers to execute arbitrary SQL commands via the searchid parameter in a search action. | |||||
CVE-2008-3580 | 1 Qsoft | 1 K-links | 2017-09-28 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in Qsoft K-Links allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to visit.php, or the PATH_INFO to the default URI under (2) report/, (3) addreview/, or (4) refer/. | |||||
CVE-2008-3585 | 1 Pozscripts | 1 Greencart Php Shopping Cart | 2017-09-28 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in PozScripts GreenCart PHP Shopping Cart allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) product_desc.php and (2) store_info.php. | |||||
CVE-2008-3586 | 1 Joomla | 1 Com Ezstore | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in the EZ Store (com_ezstore) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php. | |||||
CVE-2008-3588 | 1 Phsblog | 1 Phsblog | 2017-09-28 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in phsBlog 0.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) eid parameter to comments.php, (2) cid parameter to index.php, and the (3) urltitle parameter to entries.php. | |||||
CVE-2008-3591 | 1 21degrees | 1 Symphony | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in lib/class.admin.php in Twentyone Degrees Symphony 1.7.01 and earlier allows remote attackers to execute arbitrary SQL commands via the sym_auth cookie in a /publish/filemanager/ request to index.php. | |||||
CVE-2008-3594 | 1 Magicscripts | 2 E-store Kit-1, E-store Kit-2 | 2017-09-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in viewdetails.php in MagicScripts E-Store Kit-1, E-Store Kit-2, E-Store Kit-1 Pro PayPal Edition, and E-Store Kit-2 PayPal Edition allows remote attackers to execute arbitrary SQL commands via the pid parameter. | |||||
CVE-2008-3598 | 1 Psi-labs | 1 Psipuss | 2017-09-28 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in psipuss 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the Cid parameter to categories.php or (2) the Username parameter to login.php. |